πΊπΈ
kosada.com
2026-10-01 13:29:49
(7 hours ago)
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B1%5 ...
show more
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B1%5D=66&topics%5B2%5D=89&topics%5B3%5D=43&topics%5B4%5D=69 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.64 Safari/537.36 Edg/101.0.1210.47")
show less
DDoS Attack
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-10-01 00:34:47
(20 hours ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 20:34:41.894891 2026] [security2:error] [pid 21089:tid 21089] [client 106.0.54.213:34096] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||sfprivatechef.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "sfprivatechef.com"] [uri "/"] [unique_id "ar2qoSDb0S034GmsfEH1vwAAAAM"], referer: https://onlinebacklinkmaker.site/dir/backlinks-for-organic-growth-187045
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-30 11:40:50
(1 day ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 30 07:40:44.705548 2026] [security2:error] [pid 17083:tid 17083] [client 106.0.54.213:43600] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||reconsideringfear.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "reconsideringfear.com"] [uri "/"] [unique_id "arz1PJT56efJZKXu-D4fiwAAABA"], referer: https://buycheapbacklinks.store/dir/organic-link-building-173564
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 14:54:53
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 10:54:45.606586 2026] [security2:error] [pid 9882:tid 9882] [client 106.0.54.213:51266] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||keithbowles.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "keithbowles.com"] [uri "/"] [unique_id "arvRNScVK8Wo4K-WUd9FiAAAAAo"], referer: https://bestdachecker.store/dir/strong-domain-backlinks-112470
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 09:55:06
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 05:55:02.321237 2026] [security2:error] [pid 22806:tid 22806] [client 106.0.54.213:57574] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||cinesonline.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "cinesonline.com"] [uri "/"] [unique_id "aruK9tYOIQ6k_AgtsvZpgAAAAAo"], referer: https://bestbacklinkchecker.website/dir/high-quality-backlinks-40002
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-29 07:16:15
(2 days ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 29 03:16:09.337371 2026] [security2:error] [pid 27187:tid 27187] [client 106.0.54.213:37722] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||julecarey.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "julecarey.com"] [uri "/"] [unique_id "artlue5Q8U5BtAVdG1BnmQAAAAc"], referer: https://cookingwithjule.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
Sklurk
2026-09-27 12:11:02
(4 days ago)
Web App Attack
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-27 03:25:54
(4 days ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Sep 26 23:25:50.154525 2026] [security2:error] [pid 4769:tid 4769] [client 106.0.54.213:55532] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||bizzybeejunkremoval.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "bizzybeejunkremoval.com"] [uri "/"] [unique_id "ariMvryBYz6ubj7wMz7LSgAAACE"], referer: https://bulkpadachecker.online/dir/organic-seo-links-24813
show less
Brute-Force
Bad Web Bot
Web App Attack
π«π·
security.rdmc.fr
2026-09-25 20:23:22
(6 days ago)
Port Scan Attack proto:TCP src:46410 dst:23
Port Scan
π«π·
bigorre.org
2026-09-25 15:28:12
(6 days ago)
Unidentified crawling: not a self-announced bot in user-agent
Bad Web Bot
πΊπΈ
TPI-Abuse
2026-09-25 06:03:17
(6 days ago)
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports ...
show more
(mod_security) mod_security (id:210350) triggered by 106.0.54.213 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Fri Sep 25 02:03:09.856898 2026] [security2:error] [pid 2286:tid 2286] [client 106.0.54.213:40260] ModSecurity: Access denied with code 403 (phase 2). Pattern match "\\\\b(close|keep-alive),[\\\\t\\\\n\\\\r ]{0,1}(close|keep-alive)\\\\b" at REQUEST_HEADERS:Connection. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/12_HTTP_Protocol.conf"] [line "70"] [id "210350"] [rev "1"] [msg "COMODO WAF: Multiple/Conflicting Connection Header Data Found||gotdt.com|F|4"] [data "keep-alive, close"] [severity "WARNING"] [tag "CWAF"] [tag "Protocol"] [hostname "gotdt.com"] [uri "/"] [unique_id "arYOnYh9TCD6hrq-ppQPsQAAAA4"], referer: https://bajiafccxz.blogspot.com/
show less
Brute-Force
Bad Web Bot
Web App Attack
π΅π±
bmino.pl
2026-09-24 09:27:20
(1 week ago)
Autoban IP(2): 106.0.54.213 - Hostname: Virgo Communication Ltd - City: Kafrul - Country: Bangladesh ...
show more
Autoban IP(2): 106.0.54.213 - Hostname: Virgo Communication Ltd - City: Kafrul - Country: Bangladesh - Organization: AS58945 Virgo Communication Ltd - Reason: GET /?u=ytb57mr29053zsqpjbredl HTTP/1.1
show less
Web App Attack
Anonymous
2026-09-23 19:32:04
(1 week ago)
suricata IPS/IDS detection, ruleset ET SCAN Potential SSH Scan
Port Scan
π©πͺ
jbcrn
2026-09-22 06:07:10
(1 week ago)
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. ...
show more
Blocked by iocaine (nam-shub-of-enki) tarpit. Classified as: Disguised bots, ruleset: faked-browser. Requested honeypot path: /fediverse/post/deflagration.fautor/tenancy/overprovoke/. User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/146.0.0.0 Safari/537.36
show less
Bad Web Bot
Web App Attack
πΊπΈ
kosada.com
2026-09-21 19:04:26
(1 week ago)
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B0%5 ...
show more
Repeated requests classified as pathological web bot behavior, for example: /[redacted]?topics%5B0%5D=34&topics%5B2%5D=62&topics%5B3%5D=48&topics%5B4%5D=42 (HTTP/2.0 port 443, user agent: "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/101.0.4951.64 Safari/537.36 Edg/101.0.1210.47")
show less
DDoS Attack
Bad Web Bot